Abstract:
Regarding the issue of closing the kill chain in practical operations, a methodology is proposed for constructing kill chains that takes into account time and precision closure. Initially, a kill web network model is built based on a multi-layer network model. Subsequently, the primary factors affecting the closure of the kill chains in practical scenarios-time and precision closure are proposed, and the calculating methods for two indices are given. Then, the problem of identifying a kill chain is transformed into a path search problem within a network, calculation methods and steps are expounded. Finally, the practicality of the proposed method and the effectiveness of the model algorithm are verified through specific examples.